- Jul 07, 2021
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
- Jul 06, 2021
-
-
Quarantine failing group board spec See merge request gitlab-org/gitlab!64809
-
Mayra Cabrera authored
Disable filesystem and network premailer strategies See merge request gitlab-org/security/gitlab!1545
-
- Jul 05, 2021
-
-
Heinrich Lee Yu authored
Changelog: security
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
Mayra Cabrera authored
Geo - Fix state value in the lfs_object_registry table See merge request gitlab-org/gitlab!65466
-
Mayra Cabrera authored
Prepare 13.12.7-ee release See merge request gitlab-org/gitlab!65366
-
Mayra Cabrera authored
Backport !64632 to 13.12.7 [RUN ALL RSPEC] [RUN AS-IF-FOSS] See merge request gitlab-org/gitlab!65430
-
-
Douglas Barbosa Alexandre authored
The migration is performant, and moving it to pre-deployment migration makes the update instructions simpler. Changelog: changed EE: true
-
Douglas Barbosa Alexandre authored
The new state column in the `lfs_objects_registry` table is set to 0 by default which means pending that causes Geo to redownload each LFS file. Changelog: fixed EE: true
-
See https://gitlab.com/gitlab-org/gitlab/-/merge_requests/64697 Changelog: fixed
-
- Jul 01, 2021
-
-
GitLab Release Tools Bot authored
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
Mayra Cabrera authored
Prevent GraphQL API access by deactivated users See merge request gitlab-org/security/gitlab!1526
-
-
Mayra Cabrera authored
Forbid GET requests with mutations See merge request gitlab-org/security/gitlab!1529
-
- Jun 30, 2021
-
-
Amy Phillips authored
Bump rails gem version to 6.0.3.7 See merge request gitlab-org/security/gitlab!1515
-
GitLab Release Tools Bot authored
Copy feature visibility settings to a fork See merge request gitlab-org/security/gitlab!1523
-
GitLab Release Tools Bot authored
Update rdoc to 6.3.1 See merge request gitlab-org/security/gitlab!1534
-
GitLab Release Tools Bot authored
Add new username validation See merge request gitlab-org/security/gitlab!1495
-
GitLab Release Tools Bot authored
Avoid disclosing project in web IDE See merge request gitlab-org/security/gitlab!1512
-
GitLab Release Tools Bot authored
Clipboard DOM-based XSS in Markdown [RUN AS-IF-FOSS] See merge request gitlab-org/security/gitlab!1453
-
GitLab Release Tools Bot authored
Add sanitizing for name field See merge request gitlab-org/security/gitlab!1490
-
GitLab Release Tools Bot authored
Fix XSS in release Edits See merge request gitlab-org/security/gitlab!1486
-
GitLab Release Tools Bot authored
Fix XSS on audit log for feature flag actions See merge request gitlab-org/security/gitlab!1474
-
GitLab Release Tools Bot authored
Update Nokogiri to 1.11.4 See merge request gitlab-org/security/gitlab!1479
-
GitLab Release Tools Bot authored
Add omniauth_user check when verifying user cap See merge request gitlab-org/security/gitlab!1502
-
GitLab Release Tools Bot authored
Add total http read timeout See merge request gitlab-org/security/gitlab!1427
-
GitLab Release Tools Bot authored
Some users can push to Protected Branch with Deploy keys See merge request gitlab-org/security/gitlab!1478
-
GitLab Release Tools Bot authored
Fix merge request diff display issue with unsupported encoding See merge request gitlab-org/security/gitlab!1424
-
It contains multiple security fixes. One of them prevents string polymorphic route arguments and causes some additional changes to be made along with just bumping gem version Changelog: security
-
- Jun 28, 2021
-
-
Alishan Ladhani authored
Created a fork because rdoc 6.3.1 is missing a file. Changelog: security
-
- Jun 24, 2021
-
-
mksionek authored
Changelog: security
-